Skip to main content

Coverage

Vulnerabilities

1245 articles on vulnerability disclosures and exploits

Advertisement

CVE-2026-7482: Bleeding Llama Memory Leak in Ollama — Patch Now
HIGH
Vulnerabilities

CVE-2026-7482: Bleeding Llama Memory Leak in Ollama — Patch Now

Remote attackers can exploit CVE-2026-7482 in Ollama to leak process memory. Protect your AI infrastructure from the Bleeding Llama vulnerability impact.

Runtime Rebel Intel
3 min read · May 10, 2026
cPanel/WHM Security Update: Mitigating CVE-2026-29201 Risks
HIGH
Vulnerabilities

cPanel/WHM Security Update: Mitigating CVE-2026-29201 Risks

cPanel and WHM release patches for three vulnerabilities, including CVE-2026-29201, which allows for privilege escalation and remote code execution.

Runtime Rebel Intel
3 min read · May 9, 2026
CRITICAL
Vulnerabilities

CVE-2026-42208: BerriAI LiteLLM SQLi Exploitation — Patch Now

CISA adds CVE-2026-42208, a critical SQL injection vulnerability in BerriAI LiteLLM, to KEV catalog. Active exploitation confirmed.

Runtime Rebel Intel
4 min read · May 8, 2026
CRITICAL
Vulnerabilities

Ivanti EPMM CVE-2023-35078 Zero-Day: Urgent CISA Patch Directive

CISA orders federal agencies to patch Ivanti EPMM CVE-2023-35078 within four days following active zero-day exploitation against government networks.

Runtime Rebel Intel
3 min read · May 8, 2026
HIGH
Malware

Gafgyt and Mirai Variants Target IoT Devices via CVE-2017-17215

Analysis of Gafgyt and Mirai botnet activity targeting IoT devices through RCE vulnerabilities such as CVE-2017-17215 and CVE-2014-2320.

Runtime Rebel Intel
3 min read · May 8, 2026
HIGH
Vulnerabilities

Linux Kernel Dirty Frag: CVE-2024-26610 LPE Vulnerability Analysis

Technical analysis of the Dirty Frag Linux kernel vulnerability (CVE-2024-26610), exploring its impact on IPv4 fragmentation and mitigation strategies.

Runtime Rebel Intel
4 min read · May 8, 2026
HIGH
Vulnerabilities

CVE-2026-6411: MAXHUB Pivot Client Hardcoded AES Key — Patch Guide

Exploit analysis of CVE-2026-6411 in MAXHUB Pivot client. Learn how hardcoded AES keys and MQTT enrollment flaws lead to data disclosure and DoS.

Runtime Rebel Intel
4 min read · May 8, 2026
HIGH
Vulnerabilities

Dirty Frag: Linux Kernel Zero-Day Enables Local Privilege Escalation

The Dirty Frag zero-day vulnerability allows local attackers to gain root access on major Linux distributions via an exploit in kernel fragmentation handling.

Runtime Rebel Intel
4 min read · May 8, 2026
"Dirty Frag" Linux Kernel LPE: Unpatched Root Access Risk
HIGH
Vulnerabilities

"Dirty Frag" Linux Kernel LPE: Unpatched Root Access Risk

An unpatched Linux kernel vulnerability dubbed Dirty Frag allows local privilege escalation to root, building on the exploitation patterns of CVE-2026-31431.

Runtime Rebel Intel
4 min read · May 8, 2026
Ivanti EPMM RCE via CVE-2026-6973 — Mitigation Guide
CRITICAL
Vulnerabilities

Ivanti EPMM RCE via CVE-2026-6973 — Mitigation Guide

Ivanti warns of active exploitation of CVE-2026-6973, a high-severity RCE flaw in Endpoint Manager Mobile (EPMM) allowing admin-level access on core servers.

Runtime Rebel Intel
4 min read · May 7, 2026
CRITICAL
Vulnerabilities

CVE-2026-6973: Ivanti EPMM Exploited in the Wild — Patch Guidance

CISA adds CVE-2026-6973, an improper input validation vulnerability in Ivanti Endpoint Manager Mobile, to the KEV catalog following active exploitation.

Runtime Rebel Intel
3 min read · May 7, 2026
HIGH
Vulnerabilities

CVE-2024-3400: Palo Alto PAN-OS RCE Exploited by State Actors

Chinese state actors exploit a critical RCE vulnerability in Palo Alto Networks PAN-OS. Learn how to detect and mitigate CVE-2024-3400 exploitation.

Runtime Rebel Intel
3 min read · May 7, 2026
HIGH
Vulnerabilities

CVE-2023-35081: Ivanti EPMM Remote Code Execution Zero-Day Analysis

Ivanti warns of a high-severity RCE vulnerability in EPMM exploited in zero-day attacks. Secure your systems by patching CVE-2023-35081 today.

Runtime Rebel Intel
3 min read · May 7, 2026
PAN-OS RCE via CVE-2026-0300 — Mitigation Guide
HIGH
Vulnerabilities

PAN-OS RCE via CVE-2026-0300 — Mitigation Guide

Technical analysis of CVE-2026-0300, a critical buffer overflow in PAN-OS User-ID Authentication Portal enabling unauthenticated root access and espionage.

Runtime Rebel Intel
3 min read · May 7, 2026
HIGH
Vulnerabilities

Cisco ISE and Nexus Dashboard RCE via CVE-2024-20469 — Mitigation Guide

Cisco patches high-severity vulnerabilities in ISE, Nexus Dashboard, and Catalyst Center that enable RCE, SSRF, and DoS attacks. Secure your enterprise today.

Runtime Rebel Intel
4 min read · May 7, 2026
Microsoft Edge Plaintext Password Exposure and ICS Zero-Day Risks
CRITICAL
Threat Intel

Microsoft Edge Plaintext Password Exposure and ICS Zero-Day Risks

Analysis of Microsoft Edge plaintext password storage risks, newly disclosed ICS zero-day vulnerabilities, and Telegram-based data exfiltration TTPs.

Runtime Rebel Intel
3 min read · May 7, 2026
vm2 Node.js Library RCE: Multiple Sandbox Escape Vulnerabilities
CRITICAL
Vulnerabilities

vm2 Node.js Library RCE: Multiple Sandbox Escape Vulnerabilities

Discovery of a dozen critical vulnerabilities in the vm2 Node.js library allows for sandbox escape and RCE. Learn how to mitigate these security risks now.

Runtime Rebel Intel
4 min read · May 7, 2026
Mirai-Based xlabs_v1 Botnet Hijacks IoT Devices via ADB
HIGH
Malware

Mirai-Based xlabs_v1 Botnet Hijacks IoT Devices via ADB

Learn how the xlabs_v1 botnet exploits Android Debug Bridge (ADB) on port 5555 to enroll IoT devices into a DDoS network and how to secure your hardware.

Runtime Rebel Intel
4 min read · May 7, 2026
CRITICAL
Vulnerabilities

CVE-2026-0300: Palo Alto Networks PAN-OS Out-of-bounds Write Exploit

CISA adds CVE-2026-0300, a Palo Alto Networks PAN-OS out-of-bounds write vulnerability, to its KEV Catalog due to active exploitation.

Runtime Rebel Intel
4 min read · May 6, 2026
HIGH
Vulnerabilities

Cisco Crosswork & NSO DoS: Manual Reboot Needed Post-Exploit

Cisco Crosswork Network Controller and Network Services Orchestrator are vulnerable to a denial-of-service flaw, necessitating manual reboots for recovery.

Runtime Rebel Intel
4 min read · May 6, 2026
HIGH
Vulnerabilities

CVE-2023-29017: Critical vm2 Sandbox Escape Leads to Host RCE

Technical analysis of CVE-2023-29017 in the vm2 Node.js library. Learn how attackers escape the sandbox for remote code execution and how to patch.

Runtime Rebel Intel
3 min read · May 6, 2026
INFO
Threat Intel

Autonomous Offensive Security Platforms: XBOW Secures $35M for AI

XBOW secures $35 million in Series C funding to accelerate the development of autonomous offensive security agents and automated vulnerability discovery tools.

Runtime Rebel Intel
3 min read · May 6, 2026
HIGH
Vulnerabilities

NVIDIA Ampere GPU Rowhammer Attacks Enable Full Host Compromise

Researchers demonstrate Rowhammer attacks on NVIDIA Ampere GPUs using GDDR bitflips to gain full CPU memory control when IOMMU is disabled by default.

Runtime Rebel Intel
4 min read · May 6, 2026
Evolution of Modern Threats: From Stuxnet to AI-Driven Vulnerabilities
INFO
Threat Intel

Evolution of Modern Threats: From Stuxnet to AI-Driven Vulnerabilities

An analysis of the 20-year evolution of the cybersecurity landscape, detailing the shift from industrial sabotage to automated, AI-driven exploitation.

Runtime Rebel Intel
4 min read · May 6, 2026